Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-27637

Опубликовано: 12 янв. 2021
Источник: debian

Описание

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

Пакеты

ПакетСтатусВерсия исправленияРелизТип
r-basefixed4.0.3-1package
r-baseno-dsabusterpackage
r-baseno-dsastretchpackage

Примечания

  • https://labs.bishopfox.com/advisories/cran-version-4.0.2

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

CVSS3: 9.8
nvd
около 5 лет назад

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

CVSS3: 9.8
github
больше 3 лет назад

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3